Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\userinit.exe] 'Debugger' = 'defzkmixer.exe'
- %WINDIR%\Explorer.EXE
- opera.exe
- <SYSTEM32>\defzkmixer.exe
- 'al######ub.servegame.com':80
- 'mu#####er.sendsmtp.com':80
- 'ti####ace.my03.com':80
- '74.##5.232.51':80
- 'vi##ns.net':80
- 'br##tox.com':80
- 74.##5.232.51/
- mu#####er.sendsmtp.com/dot/?-2#########
- ti####ace.my03.com/dot/?-2#########
- al######ub.servegame.com/dot/?-2########
- vi##ns.net/dot/?92#######
- br##tox.com/dot/?12########
- DNS ASK al######ub.servegame.com
- DNS ASK mu#####er.sendsmtp.com
- DNS ASK ti####ace.my03.com
- DNS ASK na##vo.com
- DNS ASK www.google.com
- DNS ASK vi##ns.net
- DNS ASK br##tox.com